[1]杨佳,张慧翔,罗怡,等. 基于自组织映射的安卓恶意软件分析研究[J].计算机技术与发展,2016,26(01):86-89.
 YANG Jia,ZHANG Hui-xiang,LUO Yi,et al. Research on Empirical Analysis of Android Malware Based on SOM[J].,2016,26(01):86-89.
点击复制

 基于自组织映射的安卓恶意软件分析研究()
分享到:

《计算机技术与发展》[ISSN:1006-6977/CN:61-1281/TN]

卷:
26
期数:
2016年01期
页码:
86-89
栏目:
安全与防范
出版日期:
2016-01-10

文章信息/Info

Title:
 Research on Empirical Analysis of Android Malware Based on SOM
文章编号:
1673-629X(2016)01-0086-04
作者:
 杨佳张慧翔罗怡付俊平
 西北工业大学 自动化学院
Author(s):
 YANG JiaZHANG Hui-xiangLUO YiFU Jun-ping
关键词:
 Android恶意软件自组织映射神经网络可视化
Keywords:
 Androidmalwareself-organizing mapneural networksvisualization
分类号:
TP31
文献标志码:
A
摘要:
 随着 Android 系统日益广泛的应用,其安全性也成为关注的焦点。由于 Android 系统的开放性,Android 恶意软件也与日俱增。分析 Android 恶意软件,了解恶意行为,对恶意软件检测具有重要意义。文中首先总结了所收集的1260个恶意样本中表现的恶意行为;然后提取这些恶意样本请求的权限信息与声明的 Action 信息作为训练的特征向量,采用自组织映射神经网络算法对 Android 恶意软件进行聚类分析;利用 U-matrix 算法的热色图分析不同恶意 Android 应用之间的联系;利用组件平面图分析了恶意软件与单一特征之间的关系,了解特征参数与恶意行为的相关性。最后总结归纳了不同恶意行为频繁使用的权限与 Action 特征。分析结果表明,文中所提方法能够有效了解恶意行为的敏感特征信息组合,可为进一步的恶意 Android 应用检测提供依据。
Abstract:
 With the increasingly extensive application of Android operation system,its security becomes the focus of attention. Due to the openness of Android OS,malicious applications grow rapidly. In order to detect malicious applications,the primary task is to analyze the malicious behaviors of Android malwares. In this paper,the malicious behaviors are summarized from 1260 collected samples firstly. Then,the Self-Organizing Map (SOM) algorithm is used to perform visual analysis for Android malwares. The requested permissions and declared actions in the manifest files of Android applications are retrieved as the features to train the classifier. The SOM clustering re-sults are visualized by heat color map using U-matrix algorithm,and then the component plane analysis of SOM is used to understand the correlation between features and malicious behaviors. In the end,the malicious behaviors and their corresponding features are summa-rized. The result of experiments shows that the method is practical,and can identify the combination of sensitive characteristic from mali-cious behavior. These are helpful for Android malware detection.

相似文献/References:

[1]宋杰 党李成 郭振朝 赵萌.Android OS手机平台的安全机制分析和应用研究[J].计算机技术与发展,2010,(06):152.
 SONG Jie,DANG Li-cheng,GUO Zhen-chao,et al.The Security Mechanism Analysis and Applied Research of Android OS Mobile Platform[J].,2010,(01):152.
[2]胡成 任平安 李文莉.基于Android系统的FFmpeg多媒体同步传输算法研究[J].计算机技术与发展,2011,(10):85.
 HU Cheng,REN Ping-an,LI Wen-li.FFmpeg Multimedia System Based on Android Synchronous Transmission Algorithm[J].,2011,(01):85.
[3]王朝华 陈德艳 黄国宏 童怀.基于Android的智能家居系统的研究与实现[J].计算机技术与发展,2012,(06):225.
 WANG Chao-hua,CHEN De-yan,HUANG Guo-hong,et al.Research and Implementation of Smart Home Based on Android Platform[J].,2012,(01):225.
[4]王汝言 蒋子泉 刘乔寿 吴大鹏.Android下Binder进程间通信机制的分析与研究[J].计算机技术与发展,2012,(09):107.
 WANG Ru-yan,JIANG Zi-quan,LIU Qiao-shou,et al.Analysis and Research about Binder IPC Under Android[J].,2012,(01):107.
[5]程磊 胡景春 孙国峰.基于Android和WISM0228的远程控制系统[J].计算机技术与发展,2012,(10):233.
 CHENG Lei,HU Jing-chun,SUN Guo-feng.Remote Control System Based on WISMO228 Android[J].,2012,(01):233.
[6]赵英 王飞.手持移动设备在校园信息系统中的应用[J].计算机技术与发展,2012,(12):195.
 ZHAO Ying,WANG Fei.Application of Handheld Mobile Devices in Campus Network Information Platform[J].,2012,(01):195.
[7]杨飞,陈德艳,黄国宏,等.基于Android智能终端的移动视频监控系统研究[J].计算机技术与发展,2013,(02):195.
 YANG Fei,CHEN De-yan,HUANG Guo-hong,et al.Research of Mobile Video Surveillance System Based on Android Smart Terminal[J].,2013,(01):195.
[8]周鹏飞,潘地林.基于Android视频监控系统的数据处理及实现[J].计算机技术与发展,2013,(05):150.
 ZHOU Peng-fei,PAN Di-lin.Data Processing and Implementation of Video Surveillance System Based on Android[J].,2013,(01):150.
[9]杨威,高文华.基于Android的智能家居终端设计与研究[J].计算机技术与发展,2013,(07):245.
 YANG Wei,GAO Wen-hua.Design and Research of Smart Home Terminal Based on Android[J].,2013,(01):245.
[10]杨炳保.基于Android的移动云计算技术的研究[J].计算机技术与发展,2013,(08):52.
 YANG Bing-bao.Research on Mobile Cloud Computing Technology Based on Android[J].,2013,(01):52.
[11]王艳敏,李永忠,吕少伟. Android平台下文件透明加密技术的研究与实现[J].计算机技术与发展,2014,24(09):137.
 WANG Yan-min,LI Yong-zhong,Lv Shao-wei. Research and Implementation of File Transparent Encryption Technology Based on Android[J].,2014,24(01):137.
[12]邹加磊,洪亮,杨鸣坤. Android应用模拟交互技术的研究[J].计算机技术与发展,2014,24(11):32.
 ZOU Jia-le,HONG Liang,YANG Ming-kun. Research on Android Application Simulation Interactive Technology[J].,2014,24(01):32.
[13]鲍义东[][],赵伟艇[]. 基于SSH架构和Android移动课程学习平台的开发[J].计算机技术与发展,2014,24(12):163.
 BAO Yi-dong[][],ZHAO Wei-ting[]. Development of Mobile Course Learning Resources Platform Based on SSH and Android[J].,2014,24(01):163.
[14]余永红,赵卫滨. 智能终端电子点餐系统的设计与实现[J].计算机技术与发展,2015,25(05):187.
 YU Yong-hong,ZHAO Wei-bin. Design and Implementation of Intelligent Terminal Ordering System[J].,2015,25(01):187.
[15]邹绍武[],苏贵斌[]. Android应用开发中图片压缩技术的研究应用[J].计算机技术与发展,2015,25(06):106.
 ZOU Shao-wu[],SU Gui-bin[]. Research and Application on Technology of Compressing Images in Android Development and Application[J].,2015,25(01):106.
[16]张晟骁,张宏,李千目. 一种基于安卓系统的短消息加密方法[J].计算机技术与发展,2015,25(09):144.
 ZHANG Sheng-xiao,ZHANG Hong,LI Qian-mu. A SMS Encryption Method Based on Android[J].,2015,25(01):144.
[17]陈敏[] [],李晓风[][][],赵赫[][],等. 基于体感游戏的健身训练系统设计与实现[J].计算机技术与发展,2015,25(11):163.
 CHEN Min[] [],LI Xiao-feng[][][],ZHAO He[][],et al. Design and Implementation of Fitness Training System Based on Somatic Game[J].,2015,25(01):163.
[18]傅仁壮[][],吴坤悌[][],符传博[][],等. 基于Android的决策气象服务系统的设计与实现[J].计算机技术与发展,2016,26(08):125.
 FU Ren-zhuang[][],WU Kun-ti[][],FU Chuan-bo[][],et al. Design and Implementation of Decision Making Meteorological Information Service Platform Based on Android[J].,2016,26(01):125.
[19]方巍,单滢滢,张俊杰. 基于Android的云考勤系统设计与实现[J].计算机技术与发展,2016,26(09):61.
 FANG Wei,SHAN Ying-ying,ZHANG Jun-jie. Design and Implementation of Cloud Attendance System Based on Android[J].,2016,26(01):61.
[20]丁函,罗军,陆文骏,等. 智能家居控制APP系统的设计与实现[J].计算机技术与发展,2017,27(01):121.
 DING Han,LUO Jun,LU Wen-jun,et al. Design and Implementation of APP System for Intelligent Home Control[J].,2017,27(01):121.

更新日期/Last Update: 2016-04-12